An integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Ventura 13.6.8, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing a maliciously crafted file may lead to unexpected app termination.
References
Configurations
Configuration 1 (hide)
|
History
10 Dec 2024, 14:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-190 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
References | () http://seclists.org/fulldisclosure/2024/Jul/16 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/17 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/19 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/21 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/22 - Mailing List | |
References | () http://seclists.org/fulldisclosure/2024/Jul/23 - Mailing List | |
References | () https://support.apple.com/en-us/HT214116 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214117 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214119 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214120 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214122 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214123 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214124 - Vendor Advisory | |
CPE | cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* |
|
First Time |
Apple tvos
Apple watchos Apple iphone Os Apple visionos Apple macos Apple Apple ipados |
21 Nov 2024, 09:31
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2024/Jul/16 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/17 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/18 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/19 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/21 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/22 - | |
References | () http://seclists.org/fulldisclosure/2024/Jul/23 - | |
References | () https://support.apple.com/en-us/HT214116 - | |
References | () https://support.apple.com/en-us/HT214117 - | |
References | () https://support.apple.com/en-us/HT214119 - | |
References | () https://support.apple.com/en-us/HT214120 - | |
References | () https://support.apple.com/en-us/HT214122 - | |
References | () https://support.apple.com/en-us/HT214123 - | |
References | () https://support.apple.com/en-us/HT214124 - |
01 Aug 2024, 13:58
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
30 Jul 2024, 13:32
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
30 Jul 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
30 Jul 2024, 01:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
29 Jul 2024, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-29 23:15
Updated : 2024-12-10 14:35
NVD link : CVE-2024-40784
Mitre link : CVE-2024-40784
CVE.ORG link : CVE-2024-40784
JSON object : View
Products Affected
apple
- iphone_os
- visionos
- watchos
- macos
- tvos
- ipados
CWE
CWE-190
Integer Overflow or Wraparound